arctouch.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- images.ctfassets.net×11
- www.googletagmanager.com×1
Social
Contact
- Address
- 548 Market Street, 94104, San Francisco, CA, US
Registration
- Registrar
- Gandi SAS
- Created
- 2008-09-28
- Expires
- 2026-09-28 131 days left
- Updated
- 2025-08-24
- Name servers
-
- ns-1084.awsdns-07.org
- ns-177.awsdns-22.com
- ns-1991.awsdns-56.co.uk
- ns-881.awsdns-46.net
DNS records live
- NS
-
- ns-1084.awsdns-07.org
- ns-177.awsdns-22.com
- ns-1991.awsdns-56.co.uk
- ns-881.awsdns-46.net
- MX
-
- 1 mxa-0059cf01.gslb.pphosted.com
- 1 mxb-0059cf01.gslb.pphosted.com
- TXT
-
Show 16 TXT records
wiz-domain-verification=98ab4b0b3a10fe5d4a64b669fb613921f629f9c0c8ab69ec9731a41351805437google-site-verification=lCZGn70Q5GMKCOf8M44vUTQ_MlG46gUd7wrXCOx5OBsatlassian-domain-verification=rD/yaQsdGPMjsVIIbomytb2fyZ3GHU1hQanvR74oiEYw/GukTS6I5Kge0oWSwkdWopenai-domain-verification=dv-PJGWSTLYy1TxDvsKYtx8Ec301password-site-verification=AXN7NG2L2JBKTJOJ2QKJXDMJVUapple-domain-verification=lfCS3RXFE7WHdcNyadobe-idp-site-verification=f036759d22b64000f544a35e643c2c7389da5e8282d0dcba3b692978a72b62eeunity-sso-verification=bad808ca-36c1-488d-87f3-0d2159c98dbacisco-ci-domain-verification=6e84601d300f6bed76246f1da0fc454c542d13089924d4efe32d42b71d2ec6b8cursor-domain-verification-jzs0a3=Tzr26uToFxioJbJ8XXJ9PDCkXmandrill_verify.82ROUGOU5LULRnpGhcIMXganthropic-domain-verification-eh1983=XfruAoU8askDVVxMJdFxCKx9Sfacebook-domain-verification=dkehruz48t4nyu2gzlz4z6lxujnrhjgoogle-site-verification=LWjB2K4e9Sa4we-kDxwOI4MBaezjjoB3H9NX3Ho82KYnotion-domain-verification=k7u65Msvwkr0Im41WZD6CYqKAOtxIz7GNaznZTeCkEwgoogle-site-verification=thOnYeqx1AxQ-HbeKiZsOwn9vxNezKrooBjXnpcfN4Y
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:amazonses.com include:mg-spf.greenhouse.io include:servers.mcsv.net include:spf-0078f201.pphosted.com include:spf-0059cf01.pphosted.com include:spf.zoho.com include:zcsend.net ip4:205.220.179.40 ip4:205.220.168.132 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; pct=5; ri=86400; rua=mailto:mailreports@arctouch.com,mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.compolicy: reject (enforced) · pct=5 · sp=reject - DKIM
-
- k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - k1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 296 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; base-uri 'self'; object-src 'none'; worker-src 'self' blob:; manifest-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://*.googletagmanager.com https://tagmanager.google.com https://www.google.com https://www.gstatic.com https://www.googleadservices.com https://pagead2.googlesyndication.com https://googleads.g.doubleclick.net https://www.dropbox.com; style-src 'self' 'unsafe-inline' https://tagmanager.google.com https://*.googletagmanager.com https://fonts.googleapis.com; font-src 'self' data: https://fonts.gstatic.com; img-src 'self' data: blob: https://images.ctfassets.net https://img.youtube.com https://i.ytimg.com https://*.vimeocdn.com https://images.unsplash.com https://go.arctouch.com https://arctouch.com https://www.arctouch.com https://*.google-analytics.com https://*.googletagmanager.com https://*.g.doubleclick.net https://www.google.com https://*.google.com https://ssl.gstatic.com https://www.gstatic.com h- strict-transport-security
max-age=31536000;includeSubDomains;preload